C
ONFIGURING
A
CCESS
C
ONTROL
L
ISTS
7-3
Web – Click Security, ACL, Configuration. Enter an ACL name in the
Name field, select the list type (IP Standard, IP Extended, MAC, IPv6
Standard, IPv6 Extended), and click Add to open the configuration page
for the new list.
Figure 7-1 Selecting ACL Type
CLI – This example creates a standard IP ACL named bill.
Configuring a Standard IPv4 ACL
Command Attributes
• Action – An ACL can contain any combination of permit or deny rules.
• Address Type – Specifies the source IP address. Use “Any” to include
all possible addresses, “Host” to specify a specific host address in the
Address field, or “IP” to specify a range of addresses with the Address
and SubMask fields. (Options: Any, Host, IP; Default: Any)
• IP Address – Source IP address.
• Subnet Mask – A subnet mask containing four integers from 0 to 255,
each separated by a period. The mask uses 1 bits to indicate “match” and
0 bits to indicate “ignore.” The mask is bitwise ANDed with the
specified source IP address, and compared with the address for each IP
packet entering the port(s) to which this ACL has been assigned.
Console(config)#access-list ip standard bill 23-3
Console(config-std-acl)#